Downgrade Attack
Version 1.0.0 · Updated 2026-07-30
CORE DEFINITION
An attacker forces the client to abandon a high-version security protocol (such as HTTPS) and fall back to an older, vulnerable protocol (such as HTTP), then exploits the old vulnerabilities to attack.
SCAFFOLDING EFFECT
Reduce cognitive load
Prevent regression. In reforms, conservative forces will try to make you 'try the old ways again'. Once you agree to downgrade, the ills of the old system will immediately resurge. You must cut off the bridge for fallback.
Anchor fast decisions
A downgrade attack refers to an attacker, through interference or deception, forcing a system, protocol, or conversation to 'downgrade' from a high-security/advanced state to a more vulnerable state, and then exploiting its weaknesses. Its essence is to create conditions where the opponent cannot maintain optimal defense.
MINIMUM ACTION
In progress 0/1Practice this model in one real situation:
account_treeGenealogyexpand_more
menu_bookReferencesexpand_more
Source support: Explicit
- zh.wikipedia.orghttps://zh.wikipedia.org/wiki/%E9%99%8D%E7%BA%A7%E6%94%BB%E5%87%BBverified
PRIVATE NOTES · Only visible to you
SAVED Q&A
ENTRY Q&A · Private saving available
Ask with a clear boundary
thinkingmodels answers from published entry context only.
Your question is sent to thinkingmodels. The answer uses public entry context only.
RELATED MODELS